STIGhub
STIGs
RMF Controls
Compare
← MA-4 — Nonlocal Maintenance
CCI-000879
Definition
The organization terminates sessions and network connections when nonlocal maintenance is completed.
Parent Control
MA-4
Nonlocal Maintenance
Maintenance
Linked STIG Checks (20)
V-255956
CAT I
The Arista network device must terminate all network connections associated with a device management session at the end of the session, or the session must be terminated after 10 minutes of inactivity except to fulfill documented and validated mission requirements.
Arista MLS EOS 4.2x NDM Security Technical Implementation Guide
V-219310
CAT II
The Ubuntu operating system must immediately terminate all network connections associated with SSH traffic after a period of inactivity.
Canonical Ubuntu 18.04 LTS Security Technical Implementation Guide
V-269789
CAT I
The Dell OS10 Switch must terminate all network connections associated with a device management session at the end of the session, or the session must be terminated after five minutes of inactivity except to fulfill documented and validated mission requirements.
Dell OS10 Switch NDM Security Technical Implementation Guide
V-217408
CAT I
The BIG-IP appliance must be configured to terminate all management sessions after 10 minutes of inactivity.
F5 BIG-IP Device Management Security Technical Implementation Guide
V-234213
CAT II
The FortiGate device must terminate idle sessions after 10 minutes of inactivity.
Fortinet FortiGate Firewall NDM Security Technical Implementation Guide
V-237815
CAT II
The storage system must terminate all network connections associated with a communications session at the end of the session, at shutdown, or after 10 minutes of inactivity.
HPE 3PAR StoreServ 3.2.x Security Technical Implementation Guide
V-266941
CAT I
AOS must terminate all network connections associated with a device management session at the end of the session, or the session must be terminated after five minutes of inactivity except to fulfill documented and validated mission requirements.
HPE Aruba Networking AOS NDM Security Technical Implementation Guide
V-215320
CAT II
AIX must set inactivity time-out on login sessions and terminate all login sessions after 10 minutes of inactivity.
IBM AIX 7.x Security Technical Implementation Guide
V-255749
CAT II
The WebGUI of the MQ Appliance network device must terminate all sessions and network connections when nonlocal device maintenance is completed.
IBM MQ Appliance v9.0 NDM Security Technical Implementation Guide
V-66535
CAT II
The Juniper SRX Services Gateway must immediately terminate SSH network connections when the user logs off, the session abnormally terminates, or an upstream link from the managed device goes down.
Juniper SRX SG NDM Security Technical Implementation Guide
V-66601
CAT III
The Juniper SRX Services Gateway must terminate the console session when the serial cable connected to the console port is unplugged.
Juniper SRX SG NDM Security Technical Implementation Guide
V-254122
CAT II
Nutanix AOS must automatically terminate a user session after inactivity time-outs have expired or at shutdown.
Nutanix AOS 5.20.x OS Security Technical Implementation Guide
V-261332
CAT II
SLEM 5 must be configured so that all network connections associated with SSH traffic are terminated after 10 minutes of becoming unresponsive.
SUSE Linux Enterprise Micro (SLEM) 5 Security Technical Implementation Guide
V-241005
CAT II
Common Access Card (CAC)-based authentication must be enabled and enforced on the Tanium Server for all access and all accounts.
Tanium 7.0 Security Technical Implementation Guide
V-234066
CAT II
Common Access Card (CAC)-based authentication must be enabled and enforced on the Tanium Server for all access and all accounts.
Tanium 7.3 Security Technical Implementation Guide
V-265327
CAT I
The NSX Manager must terminate all network connections associated with a session after five minutes of inactivity.
VMware NSX 4.x Manager NDM Security Technical Implementation Guide
V-240468
CAT II
The SLES for vRealize must terminate all sessions and network connections related to nonlocal maintenance when nonlocal maintenance is completed.
VMware vRealize Automation 7.x SLES Security Technical Implementation Guide
V-239561
CAT II
The SLES for vRealize must terminate all sessions and network connections related to nonlocal maintenance when nonlocal maintenance is completed.
VMware vRealize Operations Manager 6.x SLES Security Technical Implementation Guide
V-256482
CAT II
The Photon operating system must set a session inactivity timeout of 15 minutes or less.
VMware vSphere 7.0 vCenter Appliance Photon OS Security Technical Implementation Guide
V-258840
CAT II
The operating system must automatically terminate a user session after inactivity time-outs have expired.
VMware vSphere 8.0 vCenter Appliance Photon OS 4.0 Security Technical Implementation Guide